In the Linux kernel, the following vulnerability has been resolved:
fbdev: sis: Error out if pixclock equals zero
The userspace program could pass any values to the driver through
ioctl() interface. If the driver doesn't check the value of pixclock,
it may cause divide-by-zero error.
In sisfb_check_var(), var->pixclock is used as a divisor to caculate
drate before it is checked against zero. Fix this by checking it
at the beginning.
This is similar to CVE-2022-3061 in i740fb which was fixed by
commit 15cf0b8.
Metrics
Affected Vendors & Products
References
History
Fri, 22 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 05 Nov 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: Linux
Published: 2024-04-03T17:01:02.935Z
Updated: 2024-12-19T08:47:14.439Z
Reserved: 2024-02-19T14:20:24.177Z
Link: CVE-2024-26777
Vulnrichment
Updated: 2024-08-02T00:14:13.470Z
NVD
Status : Awaiting Analysis
Published: 2024-04-03T17:15:53.303
Modified: 2024-11-21T09:03:02.893
Link: CVE-2024-26777
Redhat